Get started
Authentication
Every request carries an API key. Keys belong to your workspace and act as the owner or admin who created them.
API keys
Send the key as a Bearer token. Keys start coh_ and are 47 characters long. An owner or admin creates them in Developers, where each shows when it was last used and can be revoked.
curl https://api.coherenceltd.com/v1/licences \
-H "Authorization: Bearer coh_…"- A key can do what the person who created it can do, limited to its permissions. It stops working if that person leaves the workspace or becomes a viewer.
- Keys expire after the period chosen when they are created: 30, 90 or 365 days.
- Keep keys on a server or in your AI client’s config, never in a browser or app.
- Use one key per system, named after it, so you can revoke one without the others.
Permissions
A key only reaches what you ticked when you created it. Only tools your workspace is licensed for are offered.
| Scope | Tool | Allows |
|---|---|---|
products:read | Workspace | See which tools the workspace is licensed for. |
creator-briefs:read | Creator Briefs | List and read creator briefs. |
creator-briefs:execute | Creator Briefs | Create briefs. Counts against the monthly brief allowance. |
seller-advisor:read | Seller Advisor | Search and read the TikTok Shop knowledge base and past answers. |
seller-advisor:execute | Seller Advisor | Ask the Seller Advisor. Counts against the monthly question allowance. |
content-iq:read | ContentIQ (also with Creator Briefs) | Read hooks, angles and performance data. |
receipts:read | Receipts Manager | Counts, statuses and Revolut expenses missing a receipt. |
receipts:documents | Receipts Manager | Receipts found in Gmail, with senders, subjects and files. This data leaves Coherence for the app using the key. Needs a separate confirmation. |
receipts:write | Receipts Manager | Start a scan, and match, set aside or restore receipts. |
receipts:send | Receipts Manager | File matched receipts with Revolut. Sends real emails and cannot be undone. Needs a separate confirmation. |
Licences
API and MCP access come with Business licences, tool by tool. Calls count against the same allowances as the app.
Using the API means accepting the Developer Terms.
Next: connect an AI client